<?php
session_start();
//定义个常量，用来授权调用includes里面的文件
define('IN_TG','flower');
define('IN_JS','flower');
//定义个常量，用来指定本页的内容
define('SCRIPT','message');
//引入公共文件
require dirname(__FILE__).'/includes/common.inc.php';
//判断是否登录了
if(empty($_COOKIE['username'])){
	_alert_close('请先登录');
}
//送花
if(isset($_GET['action']))
{
	if ($_GET['action'] == 'send') {
		//验证码验证
		_check_code($_POST['code'],$_SESSION['code']);
		//传递过来了数据中的内容是否为空
		if (strlen($_POST['content']) == 0) {
			_alert_back("内容不能为空!");
		}
		$sql="SELECT  tg_uniqid FROM tg_user WHERE tg_username='{$_SESSION['username']}'   LIMIT  1";
		if (!!$_rows = _fetch_array($sql))
		{
			_uniqid($_rows['tg_uniqid'],$_COOKIE['uniqid']);
		}
		//引入文件
		include ROOT_PATH.'includes/check.func.php';
		$_clean = array();
		$_clean['touser'] = $_POST['touser'];
		$_clean['flower'] = $_POST['flower'];
		$_clean['fromuser'] = $_SESSION['username'];
		$_clean['content'] = _check_content($_POST['content']);
		$_clean = _mysql_string($_clean);
		//不能添加自己
		if ($_clean['touser'] == $_clean['fromuser']) {
			_alert_close('请不要为自己送花！');
		}
//为好友送花
			_query("INSERT INTO tg_flower (
					tg_touser,
					tg_fromuser,
					tg_content,
					tg_date,
					tg_flower
					)
					VALUES (
					'{$_clean['touser']}',
					'{$_clean['fromuser']}',
					'{$_clean['content']}',
					NOW(),
					'{$_clean['flower']}'
					)
					");
			if (_affected_rows() == 1) {
				_close();
//_session_destroy();
				_alert_close('好友送花成功！');
			} else {
				_close();
//_session_destroy();
				_alert_back('好友送花失败！');
			}
		}
}
//获取数据
if (isset($_GET['id'])) {
	$sql="SELECT  tg_username  FROM  tg_user  WHERE  tg_id='{$_GET['id']}'  LIMIT  1 ";
	if (!!$_rows = _fetch_array($sql))
	{
		$_html = array();
		$_html['touser'] = $_rows['tg_username'];
		$_html = _html($_html);
	} else {
		_alert_close('不存在此用户！');
	}
} else {
	_alert_close('非法操作！');
}
?>
<?php
require ROOT_PATH.'includes/title.inc.php';
?>
<div id="message">
	<h3>送花</h3>
	<form method="post" action="?action=send">
	<input type="hidden" name="touser" value="<?php echo $_html['touser'];?>" />
	<dl>
		<dd>
			<input type="text" readonly="readonly" value="TO:<?php echo $_html['touser'];?>" class="text" />
			<select name="flower">
				<?php
				foreach (range(1,100) as $value):?>
					<option value='<?php echo $value;?>'><?php echo $value;?>朵</option>
				<?php endforeach;
				?>
			</select>
		</dd>
		<dd><textarea name="content">灰常欣赏你，送你花啦~~~</textarea></dd>
		<dd>验 证 码：<input type="text" name="code" class="text yzm"  /> <img src="code.php" id="code"  /> <input type="submit" class="submit" value="送花" /></dd>
	</dl>
	</form>
</div>
</body>
</html>